Researchers Discover Rootkit Variation
Posted by Daniel Fleshbourne on 27 March 2008 - 10:43 · 2 comments & 1355 views
- Advertisement
-
-
(1 reply)
#1 Posted by +GreyWolfSC on 27 Mar 2008 - 14:50
- The ArticleSecurity researchers recommend proactive solutions, such as filtering, blocking Web threat downloads and avoiding malicious sites, before the rootkits get installed onto hard disk drives.
Despite these precautions, however, users still can be affected when the malware is served by stealthier methods, such as banner ads on legitimate sites or on links to blogsites that have been infected by attackers. "For people who aren't using up to date software, these things will definitely get through," said Yaneza. "Even if you're in a clean site, you're not 100 percent sure."
So... ads are still bad. What a shock. -
#1.1 Posted by Tzimisce on 27 Mar 2008 - 20:36
- (GreyWolfSC said @ #1)The ArticleSecurity researchers recommend proactive solutions, such as filtering, blocking Web threat downloads and avoiding malicious sites, before the rootkits get installed onto hard disk drives.
Despite these precautions, however, users still can be affected when the malware is served by stealthier methods, such as banner ads on legitimate sites or on links to blogsites that have been infected by attackers. "For people who aren't using up to date software, these things will definitely get through," said Yaneza. "Even if you're in a clean site, you're not 100 percent sure."
So... ads are still bad. What a shock.
+1
Submit to reddit
Submit to blinklist
Bookmark on del.icio.us
Add to furl
Share on Facebook
Add to Windows Live
The rootkit models a similar virus from several years ago but with one added twist -- the ability to circumvent a lot of anti-rootkit software and remain undetected. "It's a spin on an old attack," said Jamz Yaneza, research project manager for Trend Micro. "This is typical of virus writers and mothership authors trying to find ways and means to make it more difficult." The malware then sits on the infected computer unbeknownst to the user, allowing attackers to infiltrate a system in order to steal passwords, financial information and other personal data.